(RADIATOR) radiator not padding out short passowrd fields

Mike McCauley mikem at open.com.au
Tue Aug 31 17:47:14 CDT 2004


On Wednesday 01 September 2004 08:34, Mike McCauley wrote:
> Hello Tariq,
>
> On Wednesday 01 September 2004 00:38, Tariq Rashid wrote:
> > to continue the discussion on the lucent stinger which is sending out
> > short password fields (much less than 16 octets) ...
> >
> > we suspect that because other radius servers work - they may be copying
> > the password from the radius packet to a zero padded buffer... which a
> > perl-based radiator may not... hence failing the authentication.
> >
> > is this correct?

AFAIK, the current version of Radiator is tolerant on non-conforming password 
encryptions.


> >
> > that is not to say that the radiator behaviour is incorrect - we know
> > that the lucent is behaving badly.
>
> Correct.
>
> > also - the radiators which fail these authentications is at version 3.5
> > ... and 3.8 doesn't exhibit this problem. is this an issue that is known
> > to have been fixed since that version?
>
> I cant see mention of any relevant changes between those versions. If you
> would care to send an example packet at trace level 5, along with  the
> shared secret and the correct password, I can confirm your observations.
>
> Cheers.
>
> > tariq
> >
> > --
> > Archive at http://www.open.com.au/archives/radiator/
> > Announcements on radiator-announce at open.com.au
> > To unsubscribe, email 'majordomo at open.com.au' with
> > 'unsubscribe radiator' in the body of the message.

-- 
Mike McCauley                               mikem at open.com.au
Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
9 Bulbul Place Currumbin Waters QLD 4223 Australia   http://www.open.com.au
Phone +61 7 5598-7474                       Fax   +61 7 5598-7070

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP etc on Unix, Windows, MacOS etc.

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list